论文标题
信息泄漏游戏:探索信息作为实用程序功能
Information Leakage Games: Exploring Information as a Utility Function
论文作者
论文摘要
安全信息流和隐私领域的一个共同目标是为不需要的信息泄漏建立有效的防御能力。为此,必须能够对潜在的攻击及其与可能的防御能力进行相互作用进行推论。在本文中,我们提出了一个游戏理论框架,以在信息泄漏的背景下形式化攻击者和辩护人的策略,并为开发最佳防御方法提供了基础。我们游戏的新颖性是信息泄漏给出的效用,在某些情况下可能以非线性方式行事。这会导致与经典游戏理论的重大偏差,在这种理论中,实用程序功能相对于玩家的策略是线性的。因此,本文的关键贡献是建立信息泄漏游戏的基础。我们考虑两种游戏,具体取决于考虑的泄漏概念。第一种是QIF游戏,是针对定量信息流(QIF)的理论量身定制的。第二个DP游戏对应于差异隐私(DP)。
A common goal in the areas of secure information flow and privacy is to build effective defenses against unwanted leakage of information. To this end, one must be able to reason about potential attacks and their interplay with possible defenses. In this paper, we propose a game-theoretic framework to formalize strategies of attacker and defender in the context of information leakage, and provide a basis for developing optimal defense methods. A novelty of our games is that their utility is given by information leakage, which in some cases may behave in a non-linear way. This causes a significant deviation from classic game theory, in which utility functions are linear with respect to players' strategies. Hence, a key contribution of this paper is the establishment of the foundations of information leakage games. We consider two kinds of games, depending on the notion of leakage considered. The first kind, the QIF-games, is tailored for the theory of quantitative information flow (QIF). The second one, the DP-games, corresponds to differential privacy (DP).